Capability domain

Control & Operational Design

Translate requirements and risk decisions into practical controls and operational routines

Overview

The Halderstone Capability Framework defines six core capabilities required to design, operate, and improve management systems.

Overview

The Halderstone Capability Framework defines six core capabilities required to design, operate, and improve management systems.

This capability domain focuses on translating governance intent and risk decisions into concrete operational practices.

It covers how requirements, policies, and treatment strategies are transformed into practical controls, procedures, and lifecycle control points that shape day-to-day execution. Topics include control design, operational integration, process interfaces, documentation structures, and the definition of roles and responsibilities.

The goal is to ensure that management systems operate through real processes and behaviours rather than remaining abstract policy frameworks.

Halderstone Advisory

Advisory services in control & operational design

Halderstone Advisory

Advisory services in control & operational design

Halderstone Academy

Training modules about control & operational design

Halderstone Academy

Training modules about control & operational design

All
Manager
Auditor
Executive
All
Cross-discipline
Artificial Intelligence
Business Continuity
Data Protection
Environment
Information Security
Quality
31 modules found

HAM-AG-C-06

Documentation & Knowledge Management

Control documented information, records and organisational knowledge so they stay accurate, accessible and usable in management systems

Live virtual

7 hours

CHF

550

View module

HAM-AG-C-09

Process Design

Design, document and maintain usable processes with clear boundaries, flows, handovers, controls and evidence

Live virtual

7 hours

CHF

550

View module

HAM-AG-C-10

Competence, Awareness & Communication

Plan and ensure competence, awareness and communication for people within the scope of a management system

Live virtual

7 hours

CHF

550

View module

HAM-AG-C-11

Operational Control

Establish and run operational control with clear operating criteria, checks, records and deviation handling

Live virtual

7 hours

CHF

550

View module

HAM-AG-C-13

Monitoring & Measurement

Design and run monitoring activities and measurement methods to generate reliable performance data for evaluation and improvement

Live virtual

7 hours

CHF

550

View module

HAM-AG-C-14

Performance Evaluation

Evaluate monitoring and measurement results, interpret trends and deviations, and summarise conclusions to support management decisions

Live virtual

7 hours

CHF

550

View module

HAM-QM-S-01

Customer Requirements & Communication

Determine, review, agree and control customer requirements and related customer communications in line with ISO 9001

Live virtual

7 hours

CHF

550

View module

HAM-QM-S-02

Product Design & Development Control

Control product design and development, produce the required evidence, and manage design changes effectively

Live virtual

7 hours

CHF

550

View module

HAM-QM-S-03

Service Design & Development Control

Control service design and development, produce required evidence, and manage changes in line with ISO 9001 Clause 8.3

Live virtual

7 hours

CHF

550

View module

HAM-QM-S-04

Production Control

Control production under defined conditions, with identification, traceability, preservation and managed production changes

Live virtual

7 hours

CHF

550

View module

HAM-QM-S-05

Service Provision Control

Control service delivery under defined conditions, including acceptance and release, customer property, and operational changes

Live virtual

7 hours

CHF

550

View module

HAM-IS-DF-01

Mechanisms of Information Security Controls

Understand how preventive, detective and corrective controls work together across access, cryptography, monitoring, incident response, backup and recovery

Live virtual

16 hours

CHF

1,450

View module

HAM-IS-S-03

Operational Control in Information Security

Plan, implement and operate information security controls consistently in day-to-day activities in line with ISO/IEC 27001

Live virtual

7 hours

CHF

550

View module

HAM-AI-S-03

Operational Control of AI Systems

Define, implement and maintain operational controls for AI systems across deployment, change and monitoring

Live virtual

7 hours

CHF

550

View module

HAM-BC-S-02

Business Continuity Strategies & Solutions

Evaluate continuity strategy options, design continuity solutions, and apply decision criteria aligned with ISO 22301 time-based requirements

Live virtual

7 hours

CHF

550

View module

HAM-BC-S-03

Business Continuity Preparedness & Response

Structure continuity plans, define response roles and communications, and design exercises aligned with continuity requirements

Live virtual

7 hours

CHF

550

View module

HAM-DP-S-03

Operational Privacy Controls

Implement role-based privacy controls and data subject rights handling within an ISO/IEC 27701-aligned PIMS

Live virtual

7 hours

CHF

550

View module

HAM-EM-S-02

Environmental Operational Control

Control operations in an environmentally sound and compliant manner in line with ISO 14001

Live virtual

7 hours

CHF

550

View module

HAM-EM-S-03

Environmental Emergency Preparedness & Response

Establish effective arrangements for environmental emergencies through defined response plans, drills and post-incident learning

Live virtual

7 hours

CHF

550

View module

HAM-AG-A-04

Auditing Documented Information

Assess whether documented information is fit for use, internally consistent and credible as audit evidence

Live virtual

7 hours

CHF

550

View module

HAM-AG-A-05

Auditing Objectives & Performance Evaluation

Assess whether objectives and KPIs credibly measure and steer organisational performance

Live virtual

7 hours

CHF

550

View module

HAM-AG-A-06

Auditing Operational Control

Assess whether operational controls and process interactions work reliably in day-to-day practice

Live virtual

7 hours

CHF

550

View module

HAM-AG-A-07

Auditing Supplier & Outsourcing Management

Assess whether supplier and outsourced process controls manage risk effectively and achieve intended outcomes across organisational boundaries

Live virtual

7 hours

CHF

550

View module

HAM-QM-A-01

Auditing Customer Requirements & Communication Management

Evaluate whether customer requirements are defined, agreed, controlled and traceable from commitment through delivery in an ISO 9001 QMS

Live virtual

7 hours

CHF

550

View module

HAM-QM-A-02

Auditing Product & Service Development

Assess controls, validation and effectiveness in product and service design and development against ISO 9001 requirements

Live virtual

7 hours

CHF

550

View module

HAM-QM-A-03

Auditing Production & Service Provision

Assess whether production and service provision are controlled, monitored and capable of delivering consistent outcomes in an ISO 9001 QMS

Live virtual

7 hours

CHF

550

View module

HAM-IS-A-02

Auditing Information Security Controls

Evaluate control applicability, implementation evidence and common failure patterns across ISO/IEC 27001 Annex A control themes

Live virtual

7 hours

CHF

550

View module

HAM-AI-A-02

Auditing AI Lifecycle & Data Governance Controls

Evaluate lifecycle and data governance controls across data sourcing, training, validation, deployment, monitoring, and change in ISO/IEC 42001

Live virtual

7 hours

CHF

550

View module

HAM-EM-A-02

Auditing Environmental Operational Control

Assess whether environmental operational controls and emergency preparedness work effectively within an ISO 14001 management system

Live virtual

7 hours

CHF

550

View module

HAM-BC-A-02

Auditing Business Continuity Implementation & Readiness

Evaluate whether continuity strategies, operational readiness and exercising provide credible recovery capability in an ISO 22301 BCMS

Live virtual

7 hours

CHF

550

View module

HAM-DP-A-02

Auditing Operational Privacy Controls

Evaluate whether privacy controls are implemented effectively and applied consistently across personal data processing activities

Live virtual

7 hours

CHF

550

View module

All
Manager
Auditor
Executive
All
Cross-discipline
Artificial Intelligence
Business Continuity
Data Protection
Environment
Information Security
Quality
31 modules found

HAM-AG-C-06

Documentation & Knowledge Management

Control documented information, records and organisational knowledge so they stay accurate, accessible and usable in management systems

Live virtual

7 hours

CHF

550

View module

HAM-AG-C-09

Process Design

Design, document and maintain usable processes with clear boundaries, flows, handovers, controls and evidence

Live virtual

7 hours

CHF

550

View module

HAM-AG-C-10

Competence, Awareness & Communication

Plan and ensure competence, awareness and communication for people within the scope of a management system

Live virtual

7 hours

CHF

550

View module

HAM-AG-C-11

Operational Control

Establish and run operational control with clear operating criteria, checks, records and deviation handling

Live virtual

7 hours

CHF

550

View module

HAM-AG-C-13

Monitoring & Measurement

Design and run monitoring activities and measurement methods to generate reliable performance data for evaluation and improvement

Live virtual

7 hours

CHF

550

View module

HAM-AG-C-14

Performance Evaluation

Evaluate monitoring and measurement results, interpret trends and deviations, and summarise conclusions to support management decisions

Live virtual

7 hours

CHF

550

View module

HAM-QM-S-01

Customer Requirements & Communication

Determine, review, agree and control customer requirements and related customer communications in line with ISO 9001

Live virtual

7 hours

CHF

550

View module

HAM-QM-S-02

Product Design & Development Control

Control product design and development, produce the required evidence, and manage design changes effectively

Live virtual

7 hours

CHF

550

View module

HAM-QM-S-03

Service Design & Development Control

Control service design and development, produce required evidence, and manage changes in line with ISO 9001 Clause 8.3

Live virtual

7 hours

CHF

550

View module

HAM-QM-S-04

Production Control

Control production under defined conditions, with identification, traceability, preservation and managed production changes

Live virtual

7 hours

CHF

550

View module

HAM-QM-S-05

Service Provision Control

Control service delivery under defined conditions, including acceptance and release, customer property, and operational changes

Live virtual

7 hours

CHF

550

View module

HAM-IS-DF-01

Mechanisms of Information Security Controls

Understand how preventive, detective and corrective controls work together across access, cryptography, monitoring, incident response, backup and recovery

Live virtual

16 hours

CHF

1,450

View module

HAM-IS-S-03

Operational Control in Information Security

Plan, implement and operate information security controls consistently in day-to-day activities in line with ISO/IEC 27001

Live virtual

7 hours

CHF

550

View module

HAM-AI-S-03

Operational Control of AI Systems

Define, implement and maintain operational controls for AI systems across deployment, change and monitoring

Live virtual

7 hours

CHF

550

View module

HAM-BC-S-02

Business Continuity Strategies & Solutions

Evaluate continuity strategy options, design continuity solutions, and apply decision criteria aligned with ISO 22301 time-based requirements

Live virtual

7 hours

CHF

550

View module

HAM-BC-S-03

Business Continuity Preparedness & Response

Structure continuity plans, define response roles and communications, and design exercises aligned with continuity requirements

Live virtual

7 hours

CHF

550

View module

HAM-DP-S-03

Operational Privacy Controls

Implement role-based privacy controls and data subject rights handling within an ISO/IEC 27701-aligned PIMS

Live virtual

7 hours

CHF

550

View module

HAM-EM-S-02

Environmental Operational Control

Control operations in an environmentally sound and compliant manner in line with ISO 14001

Live virtual

7 hours

CHF

550

View module

HAM-EM-S-03

Environmental Emergency Preparedness & Response

Establish effective arrangements for environmental emergencies through defined response plans, drills and post-incident learning

Live virtual

7 hours

CHF

550

View module

HAM-AG-A-04

Auditing Documented Information

Assess whether documented information is fit for use, internally consistent and credible as audit evidence

Live virtual

7 hours

CHF

550

View module

HAM-AG-A-05

Auditing Objectives & Performance Evaluation

Assess whether objectives and KPIs credibly measure and steer organisational performance

Live virtual

7 hours

CHF

550

View module

HAM-AG-A-06

Auditing Operational Control

Assess whether operational controls and process interactions work reliably in day-to-day practice

Live virtual

7 hours

CHF

550

View module

HAM-AG-A-07

Auditing Supplier & Outsourcing Management

Assess whether supplier and outsourced process controls manage risk effectively and achieve intended outcomes across organisational boundaries

Live virtual

7 hours

CHF

550

View module

HAM-QM-A-01

Auditing Customer Requirements & Communication Management

Evaluate whether customer requirements are defined, agreed, controlled and traceable from commitment through delivery in an ISO 9001 QMS

Live virtual

7 hours

CHF

550

View module

HAM-QM-A-02

Auditing Product & Service Development

Assess controls, validation and effectiveness in product and service design and development against ISO 9001 requirements

Live virtual

7 hours

CHF

550

View module

HAM-QM-A-03

Auditing Production & Service Provision

Assess whether production and service provision are controlled, monitored and capable of delivering consistent outcomes in an ISO 9001 QMS

Live virtual

7 hours

CHF

550

View module

HAM-IS-A-02

Auditing Information Security Controls

Evaluate control applicability, implementation evidence and common failure patterns across ISO/IEC 27001 Annex A control themes

Live virtual

7 hours

CHF

550

View module

HAM-AI-A-02

Auditing AI Lifecycle & Data Governance Controls

Evaluate lifecycle and data governance controls across data sourcing, training, validation, deployment, monitoring, and change in ISO/IEC 42001

Live virtual

7 hours

CHF

550

View module

HAM-EM-A-02

Auditing Environmental Operational Control

Assess whether environmental operational controls and emergency preparedness work effectively within an ISO 14001 management system

Live virtual

7 hours

CHF

550

View module

HAM-BC-A-02

Auditing Business Continuity Implementation & Readiness

Evaluate whether continuity strategies, operational readiness and exercising provide credible recovery capability in an ISO 22301 BCMS

Live virtual

7 hours

CHF

550

View module

HAM-DP-A-02

Auditing Operational Privacy Controls

Evaluate whether privacy controls are implemented effectively and applied consistently across personal data processing activities

Live virtual

7 hours

CHF

550

View module

All
Manager
Auditor
Executive
All
Cross-discipline
Artificial Intelligence
Business Continuity
Data Protection
Environment
Information Security
Quality
31 modules found

HAM-AG-C-06

Documentation & Knowledge Management

Control documented information, records and organisational knowledge so they stay accurate, accessible and usable in management systems

Live virtual

CHF

550

7 hours

View module

HAM-AG-C-09

Process Design

Design, document and maintain usable processes with clear boundaries, flows, handovers, controls and evidence

Live virtual

CHF

550

7 hours

View module

HAM-AG-C-10

Competence, Awareness & Communication

Plan and ensure competence, awareness and communication for people within the scope of a management system

Live virtual

CHF

550

7 hours

View module

HAM-AG-C-11

Operational Control

Establish and run operational control with clear operating criteria, checks, records and deviation handling

Live virtual

CHF

550

7 hours

View module

HAM-AG-C-13

Monitoring & Measurement

Design and run monitoring activities and measurement methods to generate reliable performance data for evaluation and improvement

Live virtual

CHF

550

7 hours

View module

HAM-AG-C-14

Performance Evaluation

Evaluate monitoring and measurement results, interpret trends and deviations, and summarise conclusions to support management decisions

Live virtual

CHF

550

7 hours

View module

HAM-QM-S-01

Customer Requirements & Communication

Determine, review, agree and control customer requirements and related customer communications in line with ISO 9001

Live virtual

CHF

550

7 hours

View module

HAM-QM-S-02

Product Design & Development Control

Control product design and development, produce the required evidence, and manage design changes effectively

Live virtual

CHF

550

7 hours

View module

HAM-QM-S-03

Service Design & Development Control

Control service design and development, produce required evidence, and manage changes in line with ISO 9001 Clause 8.3

Live virtual

CHF

550

7 hours

View module

HAM-QM-S-04

Production Control

Control production under defined conditions, with identification, traceability, preservation and managed production changes

Live virtual

CHF

550

7 hours

View module

HAM-QM-S-05

Service Provision Control

Control service delivery under defined conditions, including acceptance and release, customer property, and operational changes

Live virtual

CHF

550

7 hours

View module

HAM-IS-DF-01

Mechanisms of Information Security Controls

Understand how preventive, detective and corrective controls work together across access, cryptography, monitoring, incident response, backup and recovery

Live virtual

CHF

1,450

16 hours

View module

HAM-IS-S-03

Operational Control in Information Security

Plan, implement and operate information security controls consistently in day-to-day activities in line with ISO/IEC 27001

Live virtual

CHF

550

7 hours

View module

HAM-AI-S-03

Operational Control of AI Systems

Define, implement and maintain operational controls for AI systems across deployment, change and monitoring

Live virtual

CHF

550

7 hours

View module

HAM-BC-S-02

Business Continuity Strategies & Solutions

Evaluate continuity strategy options, design continuity solutions, and apply decision criteria aligned with ISO 22301 time-based requirements

Live virtual

CHF

550

7 hours

View module

HAM-BC-S-03

Business Continuity Preparedness & Response

Structure continuity plans, define response roles and communications, and design exercises aligned with continuity requirements

Live virtual

CHF

550

7 hours

View module

HAM-DP-S-03

Operational Privacy Controls

Implement role-based privacy controls and data subject rights handling within an ISO/IEC 27701-aligned PIMS

Live virtual

CHF

550

7 hours

View module

HAM-EM-S-02

Environmental Operational Control

Control operations in an environmentally sound and compliant manner in line with ISO 14001

Live virtual

CHF

550

7 hours

View module

HAM-EM-S-03

Environmental Emergency Preparedness & Response

Establish effective arrangements for environmental emergencies through defined response plans, drills and post-incident learning

Live virtual

CHF

550

7 hours

View module

HAM-AG-A-04

Auditing Documented Information

Assess whether documented information is fit for use, internally consistent and credible as audit evidence

Live virtual

CHF

550

7 hours

View module

HAM-AG-A-05

Auditing Objectives & Performance Evaluation

Assess whether objectives and KPIs credibly measure and steer organisational performance

Live virtual

CHF

550

7 hours

View module

HAM-AG-A-06

Auditing Operational Control

Assess whether operational controls and process interactions work reliably in day-to-day practice

Live virtual

CHF

550

7 hours

View module

HAM-AG-A-07

Auditing Supplier & Outsourcing Management

Assess whether supplier and outsourced process controls manage risk effectively and achieve intended outcomes across organisational boundaries

Live virtual

CHF

550

7 hours

View module

HAM-QM-A-01

Auditing Customer Requirements & Communication Management

Evaluate whether customer requirements are defined, agreed, controlled and traceable from commitment through delivery in an ISO 9001 QMS

Live virtual

CHF

550

7 hours

View module

HAM-QM-A-02

Auditing Product & Service Development

Assess controls, validation and effectiveness in product and service design and development against ISO 9001 requirements

Live virtual

CHF

550

7 hours

View module

HAM-QM-A-03

Auditing Production & Service Provision

Assess whether production and service provision are controlled, monitored and capable of delivering consistent outcomes in an ISO 9001 QMS

Live virtual

CHF

550

7 hours

View module

HAM-IS-A-02

Auditing Information Security Controls

Evaluate control applicability, implementation evidence and common failure patterns across ISO/IEC 27001 Annex A control themes

Live virtual

CHF

550

7 hours

View module

HAM-AI-A-02

Auditing AI Lifecycle & Data Governance Controls

Evaluate lifecycle and data governance controls across data sourcing, training, validation, deployment, monitoring, and change in ISO/IEC 42001

Live virtual

CHF

550

7 hours

View module

HAM-EM-A-02

Auditing Environmental Operational Control

Assess whether environmental operational controls and emergency preparedness work effectively within an ISO 14001 management system

Live virtual

CHF

550

7 hours

View module

HAM-BC-A-02

Auditing Business Continuity Implementation & Readiness

Evaluate whether continuity strategies, operational readiness and exercising provide credible recovery capability in an ISO 22301 BCMS

Live virtual

CHF

550

7 hours

View module

HAM-DP-A-02

Auditing Operational Privacy Controls

Evaluate whether privacy controls are implemented effectively and applied consistently across personal data processing activities

Live virtual

CHF

550

7 hours

View module

Office scene with people standing, walking and sitting

Ready to improve your management systems?

We support continuous improvement by embedding ISO requirements into everyday practice and daily operations.

Office scene with people standing, walking and sitting

Ready to improve your management systems?

We support continuous improvement by embedding ISO requirements into everyday practice and daily operations.

Office scene with people standing, walking and sitting

Ready to improve your management systems?

We support continuous improvement by embedding ISO requirements into everyday practice and daily operations.